Active Threat β€’ MEDIUM

64.236.153.162

First Detection1/11/2026
Last Activity1/11/2026
ISPMICROSOFT-CORP-MSN-AS-BLOCK
🎯
277
Total Attacks
πŸ”Œ
1
Ports
πŸ“‘
1
Attack Types
🦠
6
Malware

Geolocation

Country
πŸ‡ΊπŸ‡Έ United States
City
Chicago
ASN
AS8075
ISP
MICROSOFT-CORP-MSN-AS-BLOCK

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

πŸ”root/1secret?
4x
πŸ”root/zhaohao1234
4x
πŸ”root/aliyun
4x
πŸ”root/123456
4x
πŸ”root/12
4x
πŸ”root/1234567
4x
πŸ”root/1
4x
πŸ”root/Qwerty1?
4x
πŸ”root/1234
4x
πŸ”root/Qwerty123?
4x
πŸ”root/cc
4x
πŸ”root/12345678
3x
πŸ”root/123
3x
πŸ”root/secret123@
1x

Executed Commands

$whoami2x
$grep 'model name' /proc/cpuinfo 2>/dev/null | head -1 | cut -d ':' -f2- | sed 's/^ *//' | xargs || echo unknown1x
$nproc 2>/dev/null || (grep -c '^processor' /proc/cpuinfo 2>/dev/null) || echo 01x
$grep -c ^processor /proc/cpuinfo 2 > /dev/null1x
$grep model name /proc/cpuinfo 2 > /dev/null | head -1 | cut -d : -f2- | sed s/^ *// | xargs1x
$uname -m 2>/dev/null || echo unknown1x
$hostname1x
$ps aux | head -101x

Risk Assessment

55
/100
LowMediumHighCritical